TRUST AND COMPLIANCE
Making security and trust a cornerstone of your success in a one-stop resource.
Corelight attestations and certifications
SOC2
Corelight is SOC2 Type II Assessed through A-Lign as our Auditor:
- In December 2021 we obtained our Type II attestation that demonstrated operational effectiveness of our design controls over the past year.
- Since 2021 we have been audited annually, and our most current SOC2/Type II report was completed on May 31, 2024.
GDPR
Corelight is also committed to data privacy and is compliant under EU General Data Protection Regulation (GDPR) through Kirkpatrick Price as our Auditor:
- Corelight successfully underwent our original GDPR attestation in October 2022, since then we have been audited annually, and our most current re-attestation was complete November 2024.
- In addition, Corelight uses Standard Contractual Clauses as a method for companies to transfer personal data to the United States from the European Union (EU) in a way that is consistent with EU law and acceptable under EU GDPR.
- Corelight Privacy Statement (found on our company’s public website) describes our privacy practices, specifically how we collect, use, share, and otherwise process information relating to individuals
(“Personal Data”) for our US customers, international, and our employees.
Our pledge to you
As the CISO at Corelight, I bring a unique perspective to our security and compliance programs. Before joining the leadership team, I was a customer who leveraged Corelight’s solutions across multiple critical mission contexts at some of the largest technology companies on the planet. This dual experience —as both client and guardian— shapes my approach to our security posture and compliance framework. I have made it my mission to continuously strengthen the protections that I expected as a client.
Having been in your shoes, I fully understand the weight of responsibility you carry. The trust you place in us to help you execute your security mission is something I take personally. That’s why we make our compliance documentation, audit reports, and security certifications available to you. I invite you to review these materials and reach out to me or our compliance team if there are any questions.
Security is not just what we do, its who we are.
Bernard Brantley
Chief Information Security Officer
Visit our Compliance and Trust Center by TrustShare for real-time access to vital information. Or contact us.